for people breaking into security

Pick the right certification.
Stay current on the threat landscape.

EntryVector maps ten credible certification programs from zero-experience to professional level, and streams cybersecurity news through a free, open public API — no accounts, no paywall.

10
cert programs
3
skill levels
Open API
news source

Certification programs

Start at Entry, prove hands-on ability at Associate, then specialise. Prices are indicative — check the provider for current exam fees and vouchers.

EntryCore security

CompTIA Security+

CompTIA

The most widely requested first certification. Covers threats, architecture, operations and governance — the baseline most junior SOC roles ask for.

EntryFoundations

ISC2 Certified in Cybersecurity (CC)

ISC2

Zero-experience entry point with free training and exam through ISC2's program. Ideal as a very first credential.

EntryHands-on basics

Google Cybersecurity Certificate

Google / Coursera

Self-paced program covering SIEM, Linux, Python and incident response with labs. Good bridge into Security+.

AssociateBlue team / SIEM

Microsoft SC-200: Security Operations Analyst

Microsoft

Practical defender track built on Microsoft Sentinel and Defender — highly employable in Azure-heavy shops.

AssociateSOC analyst

Cisco CyberOps Associate

Cisco

Network-centric monitoring, intrusion analysis and incident handling for tier-1 SOC work.

AssociateOffensive basics

eLearnSecurity eJPT

INE Security

Fully hands-on junior penetration tester exam. A friendlier on-ramp to offensive security than OSCP.

AssociatePractical defense

TryHackMe SAL1

TryHackMe

Practical, lab-based analyst certification from a platform many newcomers already train on.

ProfessionalPenetration testing

OSCP (PEN-200)

OffSec

The benchmark 24-hour practical hacking exam. Expect months of lab time — pursue after eJPT-level skills.

ProfessionalBroad defense

GIAC GSEC

SANS / GIAC

Deep, well-respected defensive credential often funded by employers. Strong for government and defense roles.

ProfessionalLeadership

CISSP

ISC2

Management-level standard requiring five years of experience — plan for it, don't start with it.

A twelve-month roadmap

01

Foundations (months 1–3)

ISC2 CC or the Google certificate plus daily lab time on TryHackMe. Learn networking, Linux and logs before tools.

02

Credential (months 4–7)

Security+ or SC-200 to clear HR filters, while you build a public homelab writeup portfolio.

03

Specialise (months 8–12)

Choose blue team (CyberOps, SAL1) or offensive (eJPT then OSCP) and follow the news feed to track what employers hire for.

Live security news

Breaches, vulnerabilities, ransomware and industry updates, pulled from the open Hacker News search API.

open api · keyless